CVE-2020-25228
CVE-2020-25228
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.4%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
14 Dec 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). A service available on port 10005/tcp of the affected devices could allow complete access to all services without authorization. An attacker could gain full control over an affected device, if he has access to this service. The system manual recommends to protect access to this port.
Affected products
Siemens · LOGO! 8 BM (incl. SIPLUS variants)Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →